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Amendments to the Claims: 



This listing of claims will replace all prior versions, and listings, of claims in the 

application: 

Listing of Claims: 

1 . (currently amended) In a node operative within a network of a plurality of 
nodes, a method for performing cryptographic-related functions, comprising: 

executing an application program at the node which [[need]] is not [[be]] highly 
secured; 

receiving an input requiring cryptographic-related processing; 

generating a message via the application program based on the input, the message 
representing one of a predefined set of messages for processing by a cryptographic 
processing component located within the node; 

transmitting the message to the cryptographic processing component; and 

performing the cryptographic-related processing by the cryptographic processing 
component. 

2. (previously presented) The method of claim 1 , wherein the cryptographic- 
related processing includes at least one of: 

verifying or generating a digital signature; encrypting data; decrypting data; 
retrieving a digital certificate or certificate revocation list; verifying a certificate's 
hierarchy; self-signed certificate processing; retrieving, verifying and storing a digital 
certificate in the node; or certificate age checking. 
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3. (previously presented) The method of claim 1, wherein the generating a 
message includes: 

generating a function call message via the application program, the function call 
message representing a request for performing a predetermined cryptographic-related 
function. 

4. (previously presented) The method of claim 1, further comprising: 
generating an output message via the application program, the output message 

requiring cryptographic-related processing; 

transmitting, based on the required cryptographic-related processing, one of the 
predefined set of messages to the cryptographic processing component; 

performing the cryptographic-related processing; and 

outputting the processed message. 

5. (currently amended) A computer-readable medium having stored thereon a 
plurality of sequences of instructions that may be invoked by a plurality of predefined 
messages, said instructions including sequences of instructions which, when executed by 
a processor in an environment which [[needj] is not [[be]] highly secure, cause said 
processor to perform a method comprising: 

receiving an input representing one of the predefined messages; 

transmitting, based on the input, a function call representing a request for 
cryptographic-related processing to a cryptographic processing module executed by the 
processor; and 

1 I 3 i 
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performing the cryptographic-related processing in the environment. 

6. (previously presented) The computer-readable medium of claim 5, wherein the 
performing the cryptographic-related processing includes at least one of; 

verifying or generating a digital signature; encrypting or decrypting data; 
retrieving a digital certificate or certificate revocation list; verifying a certificate's 
hierarchy; self-signed certificate processing; retrieving, verifying and storing a digital 
certificate; or certificate age checking. 

7« (canceled) 

8. (original) The computer-readable medium of claim 5, wherein the input 
represents a digitally signed network control message requiring verification. 

i 

9. (currently amended) In an environment which [[need}] is not [[be]] highly 
secure, a cryptographic module, comprising: 

a memory configured to operate within the environment and to store a plurality of 
cryptographic processing programs, each program being invoked via one of a plurality of 
predefined messages; and 

a processor configured to operate within the environment and to: 

receive an input requiring cryptographic-related processing, 
generate one of the predefined messages based on the input, 
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transmit the message to a first one of the cryptographic processing 

programs, and 

perform the cryptographic-relateilprocessing. 

10. (previously presented) The cryptographic module of claim 9, wherein when 
performing the cryptographic-related processing- the processor is configured to perform 
at least one of: 

verifying or generating a digital signatuiii; encrypting data; decrypting data; 
retrieving a digital certificate or certificate revocation list; verifying a certificate's 
hierarchy; self-signed certificate processing; retrieving, verifying and storing a digital 
certificate; or certificate age checking. 

1 1 . (original) The cryptographic modulejbf claim 9, wherein when transmitting 
the message, the processor is further configured. to: 

transmit a function call to the first crypt6|^raphic processing program. 

12. (original) The cryptographic module 6f claim 9, wherein the processor is 
further configured to: >j : 

transmit the result of the cryptographic-rbiated processing to an application 
program. -I 

13. (currently amended) In an environment which [[need]] is not [[be]] highly 
secure, a cryptographic module, comprising: 

• 5 .p : 
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means, operative in the environment, for' Storing a plurality of cryptographic 
processing programs, each program being invokjs^d via one of a plurality of predefined 
messages; ■ ;j: 

means, operative in the environment, fof Receiving an input requiring 
cryptographic-related processing; : ' 

means, operative in the environment, for generating one of the predefined 

messages based on the input; u 

means, operative in the environment, fo^l transmitting the message to a first one of 

the cryptographic processing programs; and • j ■ 

• ■ i|S 

means, operative in the environment, for.jperforming the cryptographic-related 
processing. 

■ 1 
. ■ i \ I! 

14. (currently amended) A method of pe^orming cryptographic-related functions 
in a node coupled to other nodes in a network erijylironment which [[need]] is not [[be]] 

ill 

highly secure, the node including an application j^rogram for handling communications 
with the other nodes, the method comprising: 

■ 'A i< 

... . . >'• i 

receiving in said node within the environment an input requiring a cryptographic- 
related operation; . u 

•tj ij 

generating in said node within the enviii&ftient a predefined message based on the 

= : H 

input, the message representing one of a pluralitjf|of predefined messages usable by a 

. : .111 

cryptographic processing program executed by tbfe node; 

B 

transmitting in said node within the enviMiment the predefined message to the 

cryptographic processing program; and i; 5 

; i 

: - 'J 

» ii 
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performing in said node within the emfirbhment, via the cryptographic processing 
program, the desired cryptographic-relatedibpfer^tion. 



15, (original) The method of claim 14, f|ijther comprising: 

.. ] :\ \ 

returning the result of the performing tp jlie application program. 

'i! 
i\ • 

16. (previously presented) The method §t claim 14, wherein the predefined 
message includes at least one of: 

a request for digital signature generation] a request for digital signature 

i;i | 

verification, a request for data encryption, a revest for data decryption, a request for 
retrieval of a digital certificate, a request for re t 

request for verification of a certificate's hieirar il^, a request for self-signed certificate 
processing, or a request for certificate age check 



17. (previously presented) The methocf 4£ claim 16, wherein the request for 
digital signature generation includes a request 

generation, secret keyed MD5 signature gefceratjojn, elliptic curve signature generation or 
digital signature standard signature generation 



18. (previously presented) Themethoc > 
digital signature verification includes a reqtjiesi : 

verification, secret keyed MD5 signature v^riflcltSon, elliptic curve signature verification 
or digital signature standard signature verifkatk 
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tjjeval of a certificate revocation list, a 

i ! 



A i 



■i ! 
.4 i 
.i I 



.» ! 



of claim 16, wherein the request for 
fpj- at least one of RSA signature 



S) I 
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1 9. (previously presented) The method 
encryption includes a request for at least one c ; 
based encryption. 
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f claim 1 6, wherein the request for data 
based encryption or elliptic curve 



decryption includes a request for at least one^o 
based decryption. 



21. (original) The method of clairji 14, 



f 1 A based decryption or elliptic curve 



accessing a remote server via the 
information. 



ijerein the performing includes: 
net\V<|)fK : to retrieve cryptographic-related 



22. (currently amended) A computer-^dftable 
executable by at least one processor in an environment 
secure to perform a method for providing; cryp]t||gh 
comprising: 

receiving in the at least one processor 
a predefined list of function calls, the pre&eftii 
available cryptographic -related functions exec 

generating in the at least one processo r 
based on the first function call, the request m£: 
by a cryptographic processing module execui 
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20. (previously presented) The meth0( [jff claim 1 6, wherein the request for data 
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medium that stores instructions 
which [[need]] is not [[be]] highly 
aphic-related functions, the method 



He environment a first function call from 

j 

list of function calls representing 
■ i| i^le by the at least one processor; 
he environment a request message 
i£e presenting a request for processing 
the at least one processor; 
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transmitting in the at least one process ir i i the environment the request message 
to the cryptographic processing module; and-- 

performing in the at least one processjpJH n the environment the cryptographic- 
related function. 

23. (canceled) 



USPATENT- AMEND 



1010 
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